7.2

CVSS3.1

CVE-2026-40242 - Arcane Unauthenticated SSRF with Conditional Response Reflection in Template Fetch Endpoint

Arcane is an interface for managing Docker containers, images, networks, and volumes. Prior to 1.17.3, the /api/templates/fetch endpoint accepts a caller-supplied url parameter and performs a server-side HTTP GET request to that URL without authentication and without URL scheme or host validation. …

πŸ“… Published: April 10, 2026, 8:34 p.m. πŸ”„ Last Modified: April 10, 2026, 8:34 p.m.

3.7

CVSS3.1

CVE-2026-40194 - phpseclib has a variable-time HMAC comparison in SSH2::get_binary_packet() using != instead of hash…

phpseclib is a PHP secure communications library. Prior to 3.0.51, 2.0.53, and 1.0.28, phpseclib\Net\SSH2::get_binary_packet() uses PHP's != operator to compare a received SSH packet HMAC against the locally computed HMAC. != on equal-length binary strings in PHP uses memcmp(), which short-circuits…

πŸ“… Published: April 10, 2026, 8:24 p.m. πŸ”„ Last Modified: April 10, 2026, 8:24 p.m.

6.8

CVSS4.0

CVE-2026-40191 - ClearanceKit has a policy bypass via dual-path Endpoint Security events checking only source path

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to 5.0.4-beta-1f46165, ClearanceKit's Endpoint Security event handler only checked the source path of dual-path file operations against File Access Authorization (FAA) rules and App Jail poli…

πŸ“… Published: April 10, 2026, 8:19 p.m. πŸ”„ Last Modified: April 10, 2026, 8:19 p.m.

5.3

CVSS4.0

CVE-2026-39922 - GeoNode < 4.4.5, 5.0.2 SSRF via Service Registration

GeoNode versions 4.0 before 4.4.5 and 5.0 before 5.0.2 contain a server-side request forgery vulnerability in the service registration endpoint that allows authenticated attackers to trigger outbound network requests to arbitrary URLs by submitting a crafted service URL during form validation. Atta…

πŸ“… Published: April 10, 2026, 7:53 p.m. πŸ”„ Last Modified: April 10, 2026, 7:53 p.m.

5.3

CVSS4.0

CVE-2026-39921 - GeoNode < 4.4.5, 5.0.2 SSRF via Document Upload

GeoNode versions 4.0 before 4.4.5 and 5.0 before 5.0.2 contain a server-side request forgery vulnerability that allows authenticated users with document upload permissions to trigger arbitrary outbound HTTP requests by providing a malicious URL via the doc_url parameter during document upload. Atta…

πŸ“… Published: April 10, 2026, 7:52 p.m. πŸ”„ Last Modified: April 10, 2026, 7:52 p.m.

5.6

CVSS3.1

CVE-2026-40190 - LangSmith Client SDKs has Prototype Pollution in langsmith-sdk via Incomplete `__proto__` Guard in …

LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to 0.5.18, the LangSmith JavaScript/TypeScript SDK (langsmith) contains an incomplete prototype pollution fix in its internally vendored lodash set() utility. The baseAssignValue() function only guards against th…

πŸ“… Published: April 10, 2026, 7:47 p.m. πŸ”„ Last Modified: April 10, 2026, 7:47 p.m.

9.3

CVSS4.0

CVE-2026-40189 - goshs has a file-based ACL authorization bypass in goshs state-changing routes

goshs is a SimpleHTTPServer written in Go. Prior to 2.0.0-beta.4, goshs enforces the documented per-folder .goshs ACL/basic-auth mechanism for directory listings and file reads, but it does not enforce the same authorization checks for state-changing routes. An unauthenticated attacker can upload f…

πŸ“… Published: April 10, 2026, 7:44 p.m. πŸ”„ Last Modified: April 10, 2026, 7:44 p.m.

7.7

CVSS3.1

CVE-2026-40188 - goshs is Missing Write Protection for Parametric Data Values

goshs is a SimpleHTTPServer written in Go. From 1.0.7 to before 2.0.0-beta.4, the SFTP command rename sanitizes only the source path and not the destination, so it is possible to write outside of the root directory of the SFTP. This vulnerability is fixed in 2.0.0-beta.4.

πŸ“… Published: April 10, 2026, 7:43 p.m. πŸ”„ Last Modified: April 10, 2026, 7:43 p.m.

7.1

CVSS3.1

CVE-2026-40185 - Missing Authorization on Immich Trip Photo Routes in TREK

TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the Immich trip photo management routes. This vulnerability is fixed in 2.7.2.

πŸ“… Published: April 10, 2026, 7:40 p.m. πŸ”„ Last Modified: April 10, 2026, 7:40 p.m.

3.7

CVSS3.1

CVE-2026-40184 - Unauthenticated Access to Uploaded Files in TREK

TREK is a collaborative travel planner. Prior to 2.7.2, TREK served uploaded photos without requiring authentication. This vulnerability is fixed in 2.7.2.

πŸ“… Published: April 10, 2026, 7:39 p.m. πŸ”„ Last Modified: April 10, 2026, 7:39 p.m.
Total resulsts: 343921
Page 5 of 34,393
Β« previous page Β» next page
Filters